Forum Discussion

Karthik_Guna's avatar
Karthik_Guna
Icon for Nimbostratus rankNimbostratus
Feb 22, 2020

How to prevent from server side template injection attack through ASM Policies?

Hello All,

 

Recently, we have observed the server side template injection attack, but not detected with any of ASM signatures.

 

{{_self.env.registerUndefinedFilterCallback("exec")}}{{_self.env.getFilter("id")}}

 

Could you, Please provide your suggestion to protection from this kind of attack

 

Regards,